Conditional Access, Threat Intelligence, and the Attack and Threat Report
Analog Informatics Corporation (AIC) kits check every sign-in before it reaches a password. The check looks at where the request comes from, whether the address is on a threat intelligence list, and which sign-in policy applies. Blocked and failed attempts land in the Attack / Threat Report, mapped to MITRE ATT&CK.
These features are built into the AIC CMMC Completeâ„¢ Level 1, Level 2, and Level 3 kits. In industry terms they cover conditional access, Identity Threat Detection and Response (ITDR), and Identity Security Posture Management (ISPM) for the kit's own sign-in surface.
Short Answers
What is conditional access in the kit?
Can I block countries?
Does the kit use threat intelligence?
What does the threat report show?
Is every sign-in logged?
Conditional Access Controls
| Control | What It Does |
|---|---|
| Country access policy | Allow, conditional, or deny sign-in by source country, with a world map and pick lists |
| Network access control list | Ordered allow and deny rules by IPv4 or IPv6 range or host name, first match wins |
| Threat intelligence deny | Deny sign-in from addresses on loaded feeds, with fail-open or fail-closed choice |
| Multifactor authentication | Time-based one-time codes and passkeys (WebAuthn), with RADIUS as a second factor |
| Password policy and lockout | Length, age, history, complexity, and lockout after failed attempts |
| Session timeouts | Idle and absolute limits, token rotation, forced logoff |
| Identity providers | Local accounts, OpenID Connect, Windows Integrated, and Active Directory |
| SAML 2.0 federation | Security Assertion Markup Language (SAML) 2.0 identity providers |
| Classification gate | Mandatory access control can require a minimum clearance to sign in |
Screenshots
The failed sign-ins in the threat report were made for this demonstration against accounts that do not exist.
Related Controls
| Framework | Controls |
|---|---|
| NIST SP 800-53 | AC-2, AC-7, AC-12, AC-17, IA-2, IA-5, SC-7, SC-23, SI-4, AU-2, AU-6 |
| NIST SP 800-171 | 3.1.1, 3.1.8, 3.1.11, 3.1.12, 3.5.3, 3.13.1, 3.14.6 |
| CMMC | AC.L2-3.1.8, AC.L2-3.1.12, IA.L2-3.5.3, SC.L1-b.1.x, SI.L2-3.14.6 |
| ISO/IEC 27001 | Annex A 5.15, 5.17, 8.5, 8.16, 8.20 |
An assessment organization, certification body, or regulator decides whether a requirement is satisfied.
Identity integrations
Identity systems
All logos and trademarks are the property of their respective owners. Their use does not imply endorsement.